SITEONE LANDSCAPE SUPPLY, INC.
ent_019e62747184877f895771bd81f33b6f
Disclosures
7
SEC 10-K Item 1C · State AG · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
15,390
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- SITEONE LANDSCAPE SUPPLY, INC.
- Normalized
- siteone landscape supply— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 5299008LX7SBD4HIAU03
- SEC EDGAR CIK
- 0001650729
- Domain
- None on record
Disclosure history (7)newest first
- FEDERALSEC 10-K Item 1Cas victim2026-02-19
The Company disclosed a July 2020 ransomware attack on its IT systems in its 10-K Item 1C. The incident resulted in no material financial impact. The Company maintains a comprehensive cybersecurity program including NIST framework alignment, third-party penetration testing, employee training, and incident response retainers. No specific malware family or threat actor was named.
- New Hampshire State AGas victim2020-11-02
SiteOne Landscape Supply notified the NH AG of a data breach where an unauthorized party accessed IT systems between July 2-14, 2020. The incident exposed PII including names, SSNs, DOBs, and financial account info for ~60 NH residents. SiteOne offered 1 year of credit monitoring and implemented enhanced monitoring software.
- Massachusetts State AGas victim2020-10-30
SiteOne Landscape Supply, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-10-30. 278 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2020-10-30
SiteOne Landscape Supply, Inc. reported a data breach to the California Attorney General. The incident occurred between July 2 and July 14, 2020. The provided notice attachment contains only generic advice on credit monitoring and identity theft prevention, lacking specific details on the nature of the breach, data types exposed, or number of affected individuals. The filing is classified as an initial notification.
- Indiana State AGas victim2020-10-30
SiteOne Landscape Supply, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2020-07-02 and was reported on 2020-10-30. 162 Indiana residents were affected. 15,390 individuals affected in total.
- Maine State AGas victim2020-10-30
SiteOne Landscape Supply, Inc. experienced an external system breach between July 2, 2020, and July 14, 2020, discovered on September 4, 2020. The incident compromised financial account or credit/debit card numbers along with security codes, access codes, or PINs for 27 Maine residents. The company provided written notification to affected individuals on October 30, 2020, and offered one year of credit monitoring and identity theft protection services through Experian.
- Montana State AGas victim2020-10-30
SiteOne Landscape Supply notified Montana residents of a data breach occurring between July 2-14, 2020. Unauthorized access led to the exfiltration of names, DOBs, SSNs, and financial account info. SiteOne engaged Experian to provide one year of identity protection services and implemented enhanced monitoring.